Senior Detection Engineer, Protective Services

DoorDash, Inc

Confirmed live today High trust
Remote

Quick summary

Work type
Remote
Location
Hartford, CT
Salary
$159,800–$235,000 / yr
Posted
4 days ago
Freshness
Confirmed live today

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $185k
This role $197k
$135k $246k
below market most similar roles pay here above market

This role pays more than 67% of similar roles. Most pay $154,450–$216,062 — the blue band above. At the midpoint, this role pays about $197k versus about $185k for comparable roles.

Based on 240 similar postings.

Employer

About DoorDash, Inc

DoorDash, Inc. is an American company operating online food ordering and food delivery. It trades under the symbol DASH. With a 56% market share, DoorDash is the largest food delivery platform in the United States.

DoorDash, Inc currently has 83 open roles on FindRole.

Listed pay typically runs $159,800–$235,000 across 82 roles with salary data.

Most-posted roles

View all roles at DoorDash, Inc

At a glance

TL;DR · Senior Detection Engineer, Protective Services

The Senior Detection Engineer joins the Protective Services team to build and improve technical capabilities for identifying threats against protected individuals. This hands-on security engineering role involves developing detections, pipelines, enrichment, and automation across enterprise security telemetry, marketplace signals, open-source information, and physical security systems. You will work in code, queries, data pipelines, and production systems to translate threat intelligence into custom alerting. Key responsibilities include implementing risk-based analytics, building detection-as-code pipelines, and developing agentic tooling using LLM-backed techniques. Required skills include proficiency in Python, Go, SQL, and SIEM query languages like SPL or KQL. You will also utilize frameworks like MITRE ATT&CK and D3FEND. The role addresses the complex problem of identifying non-traditional threats across identities, endpoints, cloud environments, and unstructured online content.

What you'll do

  • Develop and deploy detection-as-code pipelines to identify threats across enterprise, marketplace, and physical security signals.
  • Translate threat intelligence and investigative needs into high-quality custom alerts and risk-based analytics.
  • Integrate diverse telemetry sources including cloud environments, OSINT, and support interactions into protective use cases.
  • Build and maintain automation and agentic tooling to streamline investigative workflows and reduce repetitive tasks.
  • Own the full detection lifecycle from hypothesis and data validation through deployment, tuning, and retirement.
  • Conduct technical triage and investigations to correlate signals and determine appropriate responses for protective cases.
  • Use operational outcomes and false positives to continuously improve detection coverage and quality.
  • Participate in an on-call rotation to support significant protective cases and maintain production systems.

What we're looking for

  • 7+ years of experience in detection engineering, threat hunting, incident response, security operations, or security-focused software engineering.
  • Direct experience building, maintaining, and operating production detection-as-code pipelines using source control, testing, and monitoring.
  • Proven track record of building automation to improve detection accuracy, speed, or investigative quality.
  • Demonstrated experience building agents or LLM-backed tooling to solve detection or investigation problems.
  • Mastery of SQL or SIEM query languages such as SPL or KQL.
  • Proficiency writing maintainable code in Python, Go, or another relevant language.
  • Experience using MITRE ATT&CK, D3FEND, or similar frameworks to assess detection coverage.
  • A bachelor’s degree or equivalent practical experience.
  • Experience with Snowflake, Cortex, or Google SecOps (preferred).

More like this

Similar roles

Detection Engineer, Protective Services

DoorDash, Inc

Remote 12 days ago $130,600–$192,000
Python Go SQL Snowflake Google SecOps Cortex Machine Learning LLM Source Control MITRE ATT&CK D3FEND OSINT Data Pipelines Detection Engineering Threat Hunting Incident Response
3+ yrs exp Remote

Senior Detection Engineer

DoorDash, Inc

Remote 51 days ago $159,800–$235,000
Detection Engineering Python Go SQL SPL KQL Snowflake Google SecOps Cortex MITRE ATT&CK D3FEND Detection-as-Code Threat Intelligence Risk-based Analytics Distributed Systems
7+ yrs exp Remote

Senior Security Engineer, Detection Engineering

Nvidia

Remote (CA) +2 31 days ago
Splunk Microsoft Sentinel Defender CrowdStrike Python SQL KQL SPL Git CI/CD Kubernetes Detection-as-Code SIEM Threat Hunting Incident Response Cloud Security Identity Telemetry Endpoint Data
8+ yrs exp Remote

Senior Detection Engineer II

Instacart

Remote 47 days ago $230,000–$242,500
Detection-as-Code SOAR Python Golang AWS Azure GCP CI/CD Threat Hunting TTPs MacOS Version Control Machine Learning Cloud-Native
6+ yrs exp Remote

Senior Detection Engineer II

Instacart

Remote (Ontario, Canada) +3 47 days ago $196,000–$207,000
Detection-as-Code SOAR Python Golang AWS Azure GCP CI/CD Threat Hunting TTPs MacOS Version Control Machine Learning Zero Trust
6+ yrs exp Remote

Senior Detection Portfolio Engineer

Microsoft

Remote 11 days ago $119,800–$234,700
Kusto KQL Python SIEM MITRE ATT&CK Threat Modeling Anomaly Detection LLM-based workflows Jupyter Synapse SOC Incident Response Automation Data Lakes Software Development Lifecycle Threat Analytics
4+ yrs exp Remote